Connexin Software experienced a breach that affected 2,216,365 patients.
An unauthorized individual accessed an offline set of patient data used for data conversion and troubleshooting.
The exposed patient information included: (1) patient demographic information (such as patient name, guarantor name, parent/guardian name, address, email address, and date of birth); (2) Social Security Numbers (“SSNs”), (3) health insurance information (payer name, payer contract dates, policy information including type and deductible amount and subscriber number); (4) medical and/or treatment information (dates of service, location, services requested or procedures performed, diagnosis, prescription information, physician names, and Medical Record Numbers); and (5) billing and/or claims information (invoices, submitted claims and appeals, and patient account identifiers used by your provider).
The company notified the impacted individuals about the breach.
TPRM report: https://scoringcyber.rankiteo.com/company/officepracticum
"id": "off105411222",
"linkid": "officepracticum",
"type": "Breach",
"date": "11/2022",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'customers_affected': 2216365,
'industry': 'Healthcare Software',
'name': 'Connexin Software',
'type': 'Company'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'number_of_records_exposed': 2216365,
'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Patient demographic information',
'Social Security Numbers',
'Health insurance information',
'Medical and/or treatment '
'information',
'Billing and/or claims '
'information']},
'description': 'Connexin Software experienced a breach that affected '
'2,216,365 patients. An unauthorized individual accessed an '
'offline set of patient data used for data conversion and '
'troubleshooting. The exposed patient information included '
'patient demographic information, Social Security Numbers, '
'health insurance information, medical and/or treatment '
'information, and billing and/or claims information.',
'impact': {'data_compromised': ['Patient demographic information',
'Social Security Numbers',
'Health insurance information',
'Medical and/or treatment information',
'Billing and/or claims information']},
'response': {'communication_strategy': 'Notified impacted individuals'},
'threat_actor': 'Unauthorized Individual',
'title': 'Connexin Software Data Breach',
'type': 'Data Breach'}